← All credits
Dmitrii Ignatyev
413 vulnerability records and advisories credit this contributor.
CVE-2026-97317
Giveaways and Contests by RafflePress < 1.12.27 - Unauthenticated reCAPTCHA Secret Key Disclosure via Giveaway Page
CVE-2025-9294
Quiz And Survey Master <= 10.3.1 - Missing Authorization to Authenticated (Subscriber+) Quiz Results Deletion
CVE-2025-8085
Ditty < 3.1.58 - Unauthenticated SSRF
CVE-2025-13891
Image Gallery – Photo Grid & Video Gallery (Modula) <= 2.13.3 - Missing Authorization to Arbitrary Directory Listing
CVE-2025-15345
MapGeo - Interactive Geo Maps <= 1.6.27 - Reflected Cross-Site Scripting via 'map' Parameter
CVE-2025-11762
HubSpot All-In-One Marketing - Forms, Popups, Live Chat <= 11.3.32 - Missing Authorization to Authenticated (Contributor+) Installed Plugin Disclosure
CVE-2026-87777
Hostinger Reach 1.0.6 - 1.8.2 - Contributor+ Stored XSS via formId Elementor Widget Attribute
CVE-2025-15665
BEAF < 4.7.1 - Admin+ Stored XSS via Widget Shortcode Field
CVE-2025-9266
Accelerate <= 1.5.3 - Missing Authorization to Authenticated (Subscriber+) ThemeGrill Demo Importer Plugin Installation
CVE-2025-15669
Bit Form < 3.1.4 - Admin+ Stored XSS via Conversational Form Progress Label